Cloudflare is blocking leggitimate adobe commerce security scanner

What is the name of the domain?

What is the error message?

Magento Installation is not found on the provided URL:

What is the issue you’re encountering

Looking at the firewall, Cloudflare is blocking legitimate requests coming from the official magento scanner Sign in. The error is described in this page Adobe Commerce Security Scan tool troubleshooting guide | Adobe Commerce

What are the steps to reproduce the issue?

They suggest to Check that 52.87.98.44, 34.196.167.176, and 3.218.25.102 IPs are not blocked at 80 and 443 ports.
I tried if it’s possible to allowlist those IPs, but it seems this is not possible with the cloudflare basic settings.

Blocking requests from a security scanner is a good thing. You don’t want other people scanning your site for vulnerabilities.

If you want to allow it then create a Cloudflare WAF custom rule (preferred) or IP Access Rule to allow the IP addresses of the scanner to bypass Cloudflare protections.

4 Likes

This topic was automatically closed after 15 days. New replies are no longer allowed.